I0201 16:32:32.694489 1 dynamic_serving_content.go:110] "Loaded a new cert/key pair" name="serving-cert::/var/serving-cert/tls.crt::/var/serving-cert/tls.key" I0201 16:32:37.707758 1 requestheader_controller.go:244] Loaded a new request header values for RequestHeaderAuthRequestController I0201 16:32:37.967591 1 apf_controller.go:200] NewTestableController "Controller" with serverConcurrencyLimit=600, requestWaitLimit=15s, name=Controller, asFieldManager="api-priority-and-fairness-config-consumer-v1" I0201 16:32:37.967704 1 apf_controller.go:736] No exempt PriorityLevelConfiguration found, imagining one I0201 16:32:37.967722 1 apf_controller.go:736] No catch-all PriorityLevelConfiguration found, imagining one I0201 16:32:38.662031 1 genericapiserver.go:419] [graceful-termination] ShutdownTimeout=1m0s I0201 16:32:38.709138 1 requestheader_controller.go:169] Starting RequestHeaderAuthRequestController I0201 16:32:38.708549 1 tlsconfig.go:200] "Loaded serving cert" certName="serving-cert::/var/serving-cert/tls.crt::/var/serving-cert/tls.key" certDetail="\"\" [client,serving] groups=[Red Hat, Inc.] validServingFor=[localhost] issuer=\"\" (2023-02-01 15:24:10 +0000 UTC to 2024-02-01 15:24:10 +0000 UTC (now=2023-02-01 16:32:38.708512856 +0000 UTC))" I0201 16:32:38.715478 1 named_certificates.go:53] "Loaded SNI cert" index=0 certName="self-signed loopback" certDetail="\"apiserver-loopback-client@1675269154\" [serving] validServingFor=[apiserver-loopback-client] issuer=\"apiserver-loopback-client-ca@1675269152\" (2023-02-01 15:32:32 +0000 UTC to 2024-02-01 15:32:32 +0000 UTC (now=2023-02-01 16:32:38.715442253 +0000 UTC))" I0201 16:32:38.715574 1 secure_serving.go:256] Serving securely on 127.0.0.1:9400 I0201 16:32:38.715636 1 genericapiserver.go:378] [graceful-termination] waiting for shutdown to be initiated I0201 16:32:38.729634 1 shared_informer.go:240] Waiting for caches to sync for RequestHeaderAuthRequestController I0201 16:32:38.729969 1 dynamic_serving_content.go:129] "Starting controller" name="serving-cert::/var/serving-cert/tls.crt::/var/serving-cert/tls.key" I0201 16:32:38.729983 1 tlsconfig.go:240] "Starting DynamicServingCertificateController" I0201 16:32:38.730701 1 configmap_cafile_content.go:201] "Starting controller" name="client-ca::kube-system::extension-apiserver-authentication::client-ca-file" I0201 16:32:38.732420 1 shared_informer.go:240] Waiting for caches to sync for client-ca::kube-system::extension-apiserver-authentication::client-ca-file I0201 16:32:38.730722 1 configmap_cafile_content.go:201] "Starting controller" name="client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" I0201 16:32:38.732495 1 shared_informer.go:240] Waiting for caches to sync for client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file I0201 16:32:38.732549 1 reflector.go:219] Starting reflector *v1.ConfigMap (12h0m0s) from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.733315 1 reflector.go:255] Listing and watching *v1.ConfigMap from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.730865 1 reflector.go:219] Starting reflector *v1.ConfigMap (12h0m0s) from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.762099 1 reflector.go:255] Listing and watching *v1.ConfigMap from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.762536 1 reflector.go:219] Starting reflector *v1.ConfigMap (12h0m0s) from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.762605 1 reflector.go:255] Listing and watching *v1.ConfigMap from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.755941 1 reflector.go:219] Starting reflector *v1beta1.FlowSchema (10m0s) from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.763492 1 reflector.go:255] Listing and watching *v1beta1.FlowSchema from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.755967 1 apf_controller.go:299] Starting API Priority and Fairness config controller I0201 16:32:38.755990 1 reflector.go:219] Starting reflector *v1beta1.PriorityLevelConfiguration (10m0s) from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.763889 1 reflector.go:255] Listing and watching *v1beta1.PriorityLevelConfiguration from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.768943 1 reflector.go:219] Starting reflector *v1.Namespace (5h0m0s) from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.769029 1 reflector.go:255] Listing and watching *v1.Namespace from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.769327 1 reflector.go:219] Starting reflector *v1.LimitRange (5h0m0s) from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:38.769359 1 reflector.go:255] Listing and watching *v1.LimitRange from k8s.io/client-go@v0.22.1/tools/cache/reflector.go:167 I0201 16:32:39.017886 1 shared_informer.go:247] Caches are synced for client-ca::kube-system::extension-apiserver-authentication::client-ca-file I0201 16:32:39.109396 1 tlsconfig.go:178] "Loaded client CA" index=0 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"admin-kubeconfig-signer\" [] issuer=\"\" (2023-02-01 13:53:18 +0000 UTC to 2033-01-29 13:53:18 +0000 UTC (now=2023-02-01 16:32:39.109326554 +0000 UTC))" I0201 16:32:39.110181 1 tlsconfig.go:178] "Loaded client CA" index=1 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kubelet-signer\" [] issuer=\"\" (2023-02-01 13:53:25 +0000 UTC to 2023-02-02 13:53:25 +0000 UTC (now=2023-02-01 16:32:39.109959374 +0000 UTC))" I0201 16:32:39.112807 1 tlsconfig.go:178] "Loaded client CA" index=2 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kube-control-plane-signer\" [] issuer=\"\" (2023-02-01 13:53:25 +0000 UTC to 2024-02-01 13:53:25 +0000 UTC (now=2023-02-01 16:32:39.110362279 +0000 UTC))" I0201 16:32:39.113258 1 tlsconfig.go:178] "Loaded client CA" index=3 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kube-apiserver-to-kubelet-signer\" [] issuer=\"\" (2023-02-01 13:53:26 +0000 UTC to 2024-02-01 13:53:26 +0000 UTC (now=2023-02-01 16:32:39.112995797 +0000 UTC))" I0201 16:32:39.132505 1 tlsconfig.go:178] "Loaded client CA" index=4 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kubelet-bootstrap-kubeconfig-signer\" [] issuer=\"\" (2023-02-01 13:53:21 +0000 UTC to 2033-01-29 13:53:21 +0000 UTC (now=2023-02-01 16:32:39.130257276 +0000 UTC))" I0201 16:32:39.143042 1 tlsconfig.go:178] "Loaded client CA" index=5 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kube-csr-signer_@1675260122\" [] issuer=\"kubelet-signer\" (2023-02-01 14:02:02 +0000 UTC to 2023-02-02 13:53:25 +0000 UTC (now=2023-02-01 16:32:39.14300063 +0000 UTC))" I0201 16:32:39.147967 1 tlsconfig.go:178] "Loaded client CA" index=6 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"openshift-kube-apiserver-operator_node-system-admin-signer@1675260122\" [] issuer=\"\" (2023-02-01 14:02:02 +0000 UTC to 2024-02-01 14:02:03 +0000 UTC (now=2023-02-01 16:32:39.147923676 +0000 UTC))" I0201 16:32:39.148610 1 tlsconfig.go:200] "Loaded serving cert" certName="serving-cert::/var/serving-cert/tls.crt::/var/serving-cert/tls.key" certDetail="\"\" [client,serving] groups=[Red Hat, Inc.] validServingFor=[localhost] issuer=\"\" (2023-02-01 15:24:10 +0000 UTC to 2024-02-01 15:24:10 +0000 UTC (now=2023-02-01 16:32:39.148588352 +0000 UTC))" I0201 16:32:39.148999 1 named_certificates.go:53] "Loaded SNI cert" index=0 certName="self-signed loopback" certDetail="\"apiserver-loopback-client@1675269154\" [serving] validServingFor=[apiserver-loopback-client] issuer=\"apiserver-loopback-client-ca@1675269152\" (2023-02-01 15:32:32 +0000 UTC to 2024-02-01 15:32:32 +0000 UTC (now=2023-02-01 16:32:39.148955116 +0000 UTC))" I0201 16:32:39.142953 1 shared_informer.go:247] Caches are synced for client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file I0201 16:32:39.153952 1 tlsconfig.go:178] "Loaded client CA" index=0 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"admin-kubeconfig-signer\" [] issuer=\"\" (2023-02-01 13:53:18 +0000 UTC to 2033-01-29 13:53:18 +0000 UTC (now=2023-02-01 16:32:39.153918659 +0000 UTC))" I0201 16:32:39.154816 1 tlsconfig.go:178] "Loaded client CA" index=1 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kubelet-signer\" [] issuer=\"\" (2023-02-01 13:53:25 +0000 UTC to 2023-02-02 13:53:25 +0000 UTC (now=2023-02-01 16:32:39.154781056 +0000 UTC))" I0201 16:32:39.154908 1 tlsconfig.go:178] "Loaded client CA" index=2 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kube-control-plane-signer\" [] issuer=\"\" (2023-02-01 13:53:25 +0000 UTC to 2024-02-01 13:53:25 +0000 UTC (now=2023-02-01 16:32:39.154885112 +0000 UTC))" I0201 16:32:39.154979 1 tlsconfig.go:178] "Loaded client CA" index=3 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kube-apiserver-to-kubelet-signer\" [] issuer=\"\" (2023-02-01 13:53:26 +0000 UTC to 2024-02-01 13:53:26 +0000 UTC (now=2023-02-01 16:32:39.154954859 +0000 UTC))" I0201 16:32:39.155041 1 tlsconfig.go:178] "Loaded client CA" index=4 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kubelet-bootstrap-kubeconfig-signer\" [] issuer=\"\" (2023-02-01 13:53:21 +0000 UTC to 2033-01-29 13:53:21 +0000 UTC (now=2023-02-01 16:32:39.155010591 +0000 UTC))" I0201 16:32:39.155097 1 tlsconfig.go:178] "Loaded client CA" index=5 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"kube-csr-signer_@1675260122\" [] issuer=\"kubelet-signer\" (2023-02-01 14:02:02 +0000 UTC to 2023-02-02 13:53:25 +0000 UTC (now=2023-02-01 16:32:39.155073286 +0000 UTC))" I0201 16:32:39.155147 1 tlsconfig.go:178] "Loaded client CA" index=6 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"openshift-kube-apiserver-operator_node-system-admin-signer@1675260122\" [] issuer=\"\" (2023-02-01 14:02:02 +0000 UTC to 2024-02-01 14:02:03 +0000 UTC (now=2023-02-01 16:32:39.155123788 +0000 UTC))" I0201 16:32:39.155198 1 tlsconfig.go:178] "Loaded client CA" index=7 certName="client-ca::kube-system::extension-apiserver-authentication::client-ca-file,client-ca::kube-system::extension-apiserver-authentication::requestheader-client-ca-file" certDetail="\"aggregator-signer\" [] issuer=\"\" (2023-02-01 13:53:22 +0000 UTC to 2023-02-02 13:53:22 +0000 UTC (now=2023-02-01 16:32:39.155176363 +0000 UTC))" I0201 16:32:39.156329 1 tlsconfig.go:200] "Loaded serving cert" certName="serving-cert::/var/serving-cert/tls.crt::/var/serving-cert/tls.key" certDetail="\"\" [client,serving] groups=[Red Hat, Inc.] validServingFor=[localhost] issuer=\"\" (2023-02-01 15:24:10 +0000 UTC to 2024-02-01 15:24:10 +0000 UTC (now=2023-02-01 16:32:39.156309489 +0000 UTC))" I0201 16:32:39.156660 1 named_certificates.go:53] "Loaded SNI cert" index=0 certName="self-signed loopback" certDetail="\"apiserver-loopback-client@1675269154\" [serving] validServingFor=[apiserver-loopback-client] issuer=\"apiserver-loopback-client-ca@1675269152\" (2023-02-01 15:32:32 +0000 UTC to 2024-02-01 15:32:32 +0000 UTC (now=2023-02-01 16:32:39.156640288 +0000 UTC))" I0201 16:32:39.162452 1 shared_informer.go:247] Caches are synced for RequestHeaderAuthRequestController I0201 16:32:39.164773 1 apf_controller.go:304] Running API Priority and Fairness config worker